faqs-live-ledgr[.]pages[.]dev
“Suspected phishing site | Cloudflare”
PhishDestroy identifies faqs-live-ledgr.pages.dev as an active crypto drainer phishing domain under investigation for high-risk wallet-targeting scams. This domain resolves to IP 188.114.97.3 and leverages Google Trust Services SSL certificates to appear legitimate while hosted on Cloudflare infrastructure. Currently undetected by VirusTotal scanners (7/95 detections), it remains unlisted on major blocklists despite its fraudulent nature. The domain's recent creation through Cloudflare's pages.dev service suggests opportunistic deployment to bypass traditional security measures. This domain exhibits multiple technical indicators of malicious intent, including its specific threat type as a crypto drainer designed to exfiltrate cryptocurrency wallet credentials and assets. VirusTotal analysis shows complete absence of detection despite 95 scan engines, while the Google-issued SSL certificate provides false legitimacy to potential victims. The 188.114.97.3 IP address belongs to Cloudflare's hosting infrastructure, which has become increasingly favored by threat actors for its anonymity protections. Notably, the domain's registration through Cloudflare Pages indicates intentional obfuscation of the true hosting origin. Users should immediately cease all interaction with faqs-live-ledgr.pages.dev and verify any similar domains using PhishDestroy's threat intelligence database. This domain specifically targets cryptocurrency holders through fake Ledger FAQ pages, making it particularly dangerous for users seeking legitimate support. The complete lack of VirusTotal detection (7/95) demonstrates the sophistication of this attack vector. Mitigation requires checking wallet addresses against known drainer signatures, never entering recovery phrases on suspicious sites, and reporting wallet transactions to relevant blockchain monitoring services. Consider revoking any exposed wallet approvals through blockchain explorers and transferring remaining funds to cold storage immediately upon suspicion of compromise.
Ağ Güvenliği İstihbaratı
Tehdit Müdahale Pipeline
Engelleme listesi kapsamı
10 kaynak · 09.08.2026 tarihinde eşitlendi
Adli İstihbarat
VirusTotal Analizi
Site Performans Analizi
Google PageSpeed Insights — mobile performance audit of faqs-live-ledgr.pages.dev · checked Apr 4, 2026
Bu Siteden Etkilendiniz mi?
Hesap kimlik bilgilerini, kişisel bilgileri veya ödeme bilgilerini girdiyseniz ya da bu alan adından bir dosya indirdiyseniz hemen harekete geçin. Aşağıda olayı bildirmenize ve kendinizi korumanıza yardımcı olacak kaynaklar bulunmaktadır.
Yerel Yetkililere Bildirin
resmi siber suç iletişim bilgileri veya şikayet taslağı oluştur → almak için ülkenizi seçin.
Herhangi Bir Alan Adını Kontrol Et
Saklanan engelleme listesi, WHOIS, DNS ve genel tarama kanıtlarını kullanarak tehdit analizi
Şimdi TaraOltalama Olayını Bildir
Şüpheli alan adlarını tehdit veritabanımıza bildirin — topluluğu koruyun
BildirCanlı Tehdit Akışı
Son kimlik avı raporları ve gözlemlenen kullanılabilirlik değişiklikleri
İzleGelişmelerden Haberdar Olun, Güvende Kalın
Canlı tehditleri izleyin veya bunun yanlış bir uyarı olduğunu düşünüyorsanız bu kayda itiraz edin